CVE-2025-15065: Kings Information & Network Co Kess Enterprise

Medium severity, CVSS 6.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Exposure of Sensitive Information to an Unauthorized Actor, Missing Encryption of Sensitive Data, Files or Directories Accessible to External Parties vulnerability in Kings Information & Network Co. KESS Enterprise on Windows allows Privilege Escalation, Modify Existing Service, Modify Shared File.This issue affects KESS Enterprise: before *.25.9.19.exe

Affected products

Published 2025-12-29. Last modified 2026-10-07.